Linux網絡屬性配置—iproute命令家族

ip命令:
show / manipulate routing, devices, policy routing and tunnels
ip [ OPTIONS ] OBJECT { COMMAND | help }
OBJECT := { link | addr | route | netns  }
ip  OBJECT:
ip link: network device configuration
         ip  link  show  – display device attributes
  1. ]# ip link show
  2. 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN
  3. link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
  4. 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  5. link/ether 00:0c:29:ae:e4:d8 brd ff:ff:ff:ff:ff:ff
  6. 3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  7. link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
ip  link  set – change device attributes
dev NAME (default):指明要管理的設備,dev關鍵字可省略;
up和down:
multicast on或multicast off:啟用或禁用多播功能;
name NAME:重命名接口
mtu NUMBER:設置MTU的大小,默認為1500;
netns PID:ns為namespace,用于將接口移動到指定的網絡名稱空間;
  1. ]# ip link set eth1 down
  2. ]# ip link show eth1
  3. 3: eth1: <BROADCAST,MULTICAST> mtu 1500 qdisc pfifo_fast state DOWN qlen 1000
  4. link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
  5. ]# ip link set eth1 multicast off ]# ip link show eth1 3: eth1: <BROADCAST> mtu 1500 qdisc pfifo_fast state DOWN qlen 1000 link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
  1. ]# ip link set eth1 name exxx
  2. ]# ip link show
  3. 1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN
  4. link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
  5. 2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  6. link/ether 00:0c:29:ae:e4:d8 brd ff:ff:ff:ff:ff:ff
  7. 3: exxx: <BROADCAST> mtu 1500 qdisc pfifo_fast state DOWN qlen 1000
  8. link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
  1. ]# ip link set eth1 mtu 2000
  2. ]# ip link show eth1
  3. 3: eth1: <BROADCAST> mtu 2000 qdisc pfifo_fast state DOWN qlen 1000
  4. link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
ip  link  help –  顯示簡要使用幫助;
ip netns:  – manage network namespaces.
ip  netns  list:列出所有的netns
ip  netns  add  NAME:創建指定的netns
ip  netns  del  NAME:刪除指定的netns
ip  netns   exec  NAME  COMMAND:在指定的netns中運行命令
  1. ]# ip netns list
  2. ]# ip netns add netspace
  3. ]# ip netns list
  4. netspace
ip address – protocol address management.
ip address add – add new protocol address
                ip address { add | del } IFADDR dev STRING
        ip address { show | flush } [ dev STRING ] [label PATTERN ]
ip  addr  add  IFADDR  dev  IFACE
[label NAME]:為額外添加的地址指明接口別名;
[broadcast ADDRESS]:廣播地址;會根據IP和NETMASK自動計算得到;
[scope SCOPE_VALUE]:
global:全局可用;
link:接口可用;
host:僅本機可用;
  1. ]# ip addr add 192.168.1.10/24 dev eno16777736
  2. ]# ip addr show eno16777736
  3. 2: eno16777736: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  4. link/ether 00:0c:29:60:1e:7a brd ff:ff:ff:ff:ff:ff
  5. inet 10.0.1.20/24 brd 10.0.1.255 scope global eno16777736
  6. valid_lft forever preferred_lft forever
  7. inet 192.168.1.10/24 scope global eno16777736
  8. valid_lft forever preferred_lft forever
  1. ]# ip addr add 192.168.2.10/24 dev eno16777736 label eno16777736:0
  2. ]# ip addr show eno16777736
  3. 2: eno16777736: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  4. link/ether 00:0c:29:60:1e:7a brd ff:ff:ff:ff:ff:ff
  5. inet 10.0.1.20/24 brd 10.0.1.255 scope global eno16777736
  6. valid_lft forever preferred_lft forever
  7. inet 192.168.1.10/24 scope global eno16777736
  8. valid_lft forever preferred_lft forever
  9. inet 192.168.2.10/24 scope global eno16777736:0
  10. valid_lft forever preferred_lft forever
ip address delete – delete protocol address
ip addr  delete  IFADDR  dev  IFACE 
  1. ]# ip addr del 192.168.2.10/24 dev eno16777736
  2. ]# ip addr del 192.168.1.10/24 dev eno16777736
  3. ]# ip ad sh eno16777736
  4. 2: eno16777736: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  5. link/ether 00:0c:29:60:1e:7a brd ff:ff:ff:ff:ff:ff
  6. inet 10.0.1.20/24 brd 10.0.1.255 scope global eno16777736
  7. valid_lft forever preferred_lft forever
ip address show – look at protocol addresses
ip  addr   list  [IFACE]:顯示接口的地址;
  1. ]# ip addr show eno16777736
  2. 2: eno16777736: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  3. link/ether 00:0c:29:60:1e:7a brd ff:ff:ff:ff:ff:ff
  4. inet 10.0.1.20/24 brd 10.0.1.255 scope global eno16777736
  5. valid_lft forever preferred_lft forever
  6. inet6 fe80::20c:29ff:fe60:1e7a/64 scope link
  7. valid_lft forever preferred_lft forever
ip address flush – flush protocol addresses
ip  addr  flush  dev  IFACE
  1. ]# ip addr add 10.10.10.10/8 dev eth1 label eth1:0
  2. ]# ip addr add 172.16.1.100/16 dev eth1 label eth1:1
  3. ]# ip addr show eth1
  4. 3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
  5. link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
  6. inet 192.168.1.100/24 brd 192.168.1.255 scope global eth1
  7. inet 10.10.10.10/8 scope global eth1:0
  8. inet 172.16.1.100/16 scope global eth1:1

  9. ]# ip addr flush dev eth1 ]# ip addr show eth1 3: eth1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000 link/ether 00:0c:29:ae:e4:e2 brd ff:ff:ff:ff:ff:ff
ip route – routing table management
ip route add – add new route
ip route change – change route
ip route replace – change or add new one
ip  route   add  TYPE PREFIX  via GW  [dev  IFACE]  [src SOURCE_IP]
  1. ]# ip route add 172.16.0.0/16 via 10.0.1.2 dev eth0 src 10.0.1.6
  2. ]# ip route show
  3. 10.0.1.0/24 dev eth0 proto kernel scope link src 10.0.1.6
  4. 192.168.1.0/24 dev eth1 proto kernel scope link src 192.168.1.10
  5. 172.16.0.0/16 via 10.0.1.2 dev eth0 src 10.0.1.6
  6. default via 10.0.1.2 dev eth0
  1. ]# ip route add default via 10.0.1.2 dev eth0
  2. ]# ip route show
  3. 10.0.1.0/24 dev eth0 proto kernel scope link src 10.0.1.6
  4. 192.168.1.0/24 dev eth1 proto kernel scope link src 192.168.1.10
  5. 172.16.0.0/16 via 10.0.1.2 dev eth0 src 10.0.1.6
  6. default via 10.0.1.2 dev eth0
         ip route delete – delete route
 ip  route  del  TYPE PRIFIX 
  1. ]# ip route del 172.16.0.0/16
  2. ]# ip route del default
  3. ]# ip route show
  4. 10.0.1.0/24 dev eth0 proto kernel scope link src 10.0.1.6
  5. 192.168.1.0/24 dev eth1 proto kernel scope link src 192.168.1.10
ip route show – list routes
TYPE PRIFIX  
ip route get – get a single route
ip  route  get  TYPE PRIFIX
  1. ]# ip route get 192.168.1.0/24
  2. broadcast 192.168.1.0 dev eth1 src 192.168.1.10
  3. cache <local,brd> mtu 1500 advmss 1460 hoplimit 64
ss命令:
ss  [options]  [ FILTER ]
選項:
-t:TCP協議的相關連接
-u:UDP相關的連接
-w:raw socket相關的連接
-l:監聽狀態的連接
-a:所有狀態的連接
-n:數字格式
-p:相關的程序及其PID
-e:擴展格式信息
-m:內存用量
-o:計時器信息
FILTER := [ state TCP-STATE ]  [ EXPRESSION ]
TCP的常見狀態:
TCP FSM:
LISTEN:監聽
ESTABLISEHD:建立的連接
FIN_WAIT_1:
FIN_WAIT_2:
SYN_SENT:
SYN_RECV:
CLOSED:
EXPRESSION:
dport = 
sport = 
示例:'( dport = :22 or sport = :22)’
~]# ss   -tan    ‘(  dport = :22 or sport = :22  )’
~]# ss  -tan  state  ESTABLISHED

原創文章,作者:N24_ViCi,如若轉載,請注明出處:http://www.www58058.com/62526

(0)
N24_ViCiN24_ViCi
上一篇 2016-12-04 16:29
下一篇 2016-12-04 18:21

相關推薦

  • Linux發行版的基礎目錄名稱命名法則及功用規定

    /bin ?存儲單用戶維護模式還能操作的命令 /boot 存儲開機時會使用到的文件 /dev? 存儲設備與接口文件 /etc? 存儲系統的配置文件 /home 系統默認的用戶主目錄 /lib? 存儲函數庫文件 /media 光盤掛載點 /mnt?? 光盤或者U盤掛載點 /opt?? 第三方應用程序文件存放目錄 /root? root用戶家目錄 /sbin ?…

    Linux干貨 2018-03-04
  • 馬哥教育網絡班22期第2周課程作業

    一、Linux上的文件管理類命令都有哪些,其常用的使用方法及其相關示例演示。     1、cp 文件復制 [選項]源文件 目標文件         -r 遞歸復制    …

    Linux干貨 2016-08-31
  • 硬鏈接與軟鏈接的聯系與區別

    硬鏈接與軟鏈接的聯系與區別 我們知道文件都有文件名與數據,這在 Linux 上被分成兩個部分:用戶數據 (user data) 與元數據 (metadata)。用戶數據,即文件數據塊 (data block),數據塊是記錄文件真實內容的地方;而元數據則是文件的附加屬性,如文件大小、創建時間、所有者等信息。在 Linux 中,元數據中的 inode 號(ino…

    Linux干貨 2016-10-23
  • Tomcat

    ????Tomcat是由Apache軟件基金會下屬的Jakarta項目開發的一個Servlet容器,實現了對Servlet和JavaServer Page(JSP)的支持,并提供了作為Web服務器的一些特有功能,如Tomcat管理和控制平臺、安全域管理和Tomcat閥等。由于Tomcat本身也內含了一個HTTP服務器,它也可以被視作一個單獨的Web服務器。但…

    2017-09-05
  • debian8下安裝配置部署zabbix3.0

    一、安裝配置zabbix server     web server服務器:172.28.0.187     mysql服務器:172.28.0.237     1、安裝web server(172.28.0.187)  &nbs…

    Linux干貨 2016-05-07
  • Linux系統文件查找locate和find命令工具使用

    講到Linux的文件查找,首先大家一般在Windows中有過查找過文件,我們知道window是以文件名結尾來識別文件的,使用一些通配符*.doc,*.txt來檢索一類文件,縮小范圍,實現快速定位文件,在Linux中,也有文件查找的需要不過實現的方式將更加靈活; 1)locate工具  2)find工具 1.locate Linux中也有像windo…

    Linux干貨 2016-08-18

評論列表(1條)

  • 馬哥教育
    馬哥教育 2016-12-14 15:45

    博客完成的非常好,有圖有真相,有實驗結果。加油!

欧美性久久久久